Техническая информация
- %TEMP%\20230922t220533_521.exe
- %TEMP%\20230922t220610_058.exe
- %TEMP%\20230922t220633_658.exe
- '20##########533_521.ltiapmyzmjxrvrts.info':80
- '20##########610_058.ltiapmyzmjxrvrts.info':80
- '20##########633_658.ltiapmyzmjxrvrts.info':80
- '20##########655_880.ltiapmyzmjxrvrts.info':80
- http://20##########533_521.ltiapmyzmjxrvrts.info/v4/20230922T220533_521.exe
- http://20##########610_058.ltiapmyzmjxrvrts.info/v4/20230922T220610_058.exe
- http://20##########633_658.ltiapmyzmjxrvrts.info/v4/20230922T220633_658.exe
- http://20##########655_880.ltiapmyzmjxrvrts.info/v4/20230922T220655_880.exe
- DNS ASK 20##########533_521.ltiapmyzmjxrvrts.info
- DNS ASK 20##########610_058.ltiapmyzmjxrvrts.info
- DNS ASK 20##########633_658.ltiapmyzmjxrvrts.info
- DNS ASK 20##########655_880.ltiapmyzmjxrvrts.info
- '%TEMP%\20230922t220533_521.exe'
- '%TEMP%\20230922t220610_058.exe'
- '%TEMP%\20230922t220633_658.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230922T220533_521.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230922T220610_058.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230922T220633_658.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\20230922T220655_880.exe